Hypothesis-based Threat Hunting can help us tackle this issue by assuming that an incident of any kind has already happened, and the Indicators of Attack/Compromise just need to be uncovered. This way, we can proactively detect threats in our environment and enhance the detecting solutions afterward with new experiences gained while hunting for such occurrences.
During our practical workshop, Paula and Mike will show you how to come up with a good Hypothesis tailored for your own environment, how to create KQL queries based on what we know from the Hypothesis and how to analyze the results to disclose any unwanted activity.
Workshop objectives:
- Acknowledge the fact that many successful and unsuccessful exploitation attempts go undetected and understand the importance and potential of Hypothesis-based Threat Hunting.
- Learn to formulate Hypotheses based on the specifications of your own environment (through examples and demos).
- Learn to create KQL queries based on what you know from the Hypothesis and analyze the results.
- Make use of and correlate data from different tools and solutions.
This technical workshop will teach you about the risks of undetected exploitation attempts, giving the knowledge and tools to implement a preventive, proactive strategy of counteracting the risks. We want you to learn how to minimize them in the future by using a wide array of practical solutions.
CLICK HERE TO REGISTER!